AS211715
I am running the educational/private AS211715.
Links
- PeeringDB: https://www.peeringdb.com/asn/211715
- bgp.tools: https://bgp.tools/as/211715
General information: In case you don’t know what I’m talking about, here are two blog posts, describing it in more detail:
Purpose
There are multiple reasons for which I am running my own AS.
- Learning
- To get a “view of the internet” - I’m planning to (at some point in the future) run some analysis on the received BGP information
- Own IP space (to get around NAT with changing addresses and be independent, especially from providers changing prices and/or cancelling offers)
- mostly to run servers at some places, where I can’t get public addresses
- Multihoming
Peering
Since I just started building this AS, I am not connected to any public exchanges yet. Right now, my network consists of three routers with one of them being at my home, and traffic (also to my upstreams) is exchanged via encapsulation protocols (a mix of Wireguard and GRE in my instance). While I might expand this in the future, I am not there yet.
If you’d like to peer via Wireguard/GRE or similar, I am happy to do so, although the actual benefit might be negligible, especially due to the low traffic levels (but I’m happy to do so anyways).
As usual with privately run Networks, expect some downtime from time to time, since I might break things or do not really care about going huge extra steps just to ensure 100% uptime during changes (I’m doing most stuff late at night anyways). I’m also not sending out notifications for maintenance.
Public Services
None (yet). This page will be updated as soon as there are any services.
My current dilemma is the question, if I should actually run IPv6 only services. On one hand, this is the future, but on the other hand, there are many users without IPv6 at all right now, making such services inaccessible to them - myself included for larger parts of my home network, since until a few months ago, I also didn’t have and IPv6 access (and transitioning takes a while).
Tasks
Done:
- AS and PI registration
- First Router up and Running with Announcement
- RPKI Signing
- ASPA Signing
- Second (Public) Router
- Traffic Monitoring
- Not public like for some other private ASes, but that’s currently enough for my own uses
To do (kind of ordered by importance by my personal feel):
- Backup-Server for my other Devices and VMs
- Authoritative DNS Server
- Git-Service
- Uptime Monitoring
- More Route filtering
- esp. RPKI Filtering
- maybe ASPA Filtering
- Clear up RIPE Database
- I noticed that there are some leftovers of a previous allocation of my ASN, e.g. an IPv4 Block that is now announced by some company aswell as membership in some (many) AS-Sets
- Peering
Probably far future:
- Central Management for Routers
- Looking Glass